Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security Alert: 1.16.16 #9669

Closed
soloio-bot opened this issue Jun 24, 2024 · 1 comment
Closed

Security Alert: 1.16.16 #9669

soloio-bot opened this issue Jun 24, 2024 · 1 comment
Assignees
Labels
Prioritized Indicating issue prioritized to be worked on in RFE stream trivy vulnerability

Comments

@soloio-bot
Copy link

soloio-bot commented Jun 24, 2024

quay.io/solo-io/access-logger:1.16.16

No Vulnerabilities Found for quay.io/solo-io/access-logger:1.16.16 (alpine 3.17.6)

Vulnerabilities Listed for usr/local/bin/access-logger

Vulnerability ID Package Severity Installed Version Fixed Version Reference
CVE-2024-24790 stdlib CRITICAL 1.21.9 1.21.11, 1.22.4 https://avd.aquasec.com/nvd/cve-2024-24790

quay.io/solo-io/certgen:1.16.16

No Vulnerabilities Found for quay.io/solo-io/certgen:1.16.16 (alpine 3.17.6)

Vulnerabilities Listed for usr/local/bin/certgen

Vulnerability ID Package Severity Installed Version Fixed Version Reference
CVE-2024-24790 stdlib CRITICAL 1.21.9 1.21.11, 1.22.4 https://avd.aquasec.com/nvd/cve-2024-24790

quay.io/solo-io/discovery:1.16.16

No Vulnerabilities Found for quay.io/solo-io/discovery:1.16.16 (alpine 3.17.6)

Vulnerabilities Listed for usr/local/bin/discovery

Vulnerability ID Package Severity Installed Version Fixed Version Reference
CVE-2024-24790 stdlib CRITICAL 1.21.9 1.21.11, 1.22.4 https://avd.aquasec.com/nvd/cve-2024-24790

quay.io/solo-io/gloo:1.16.16

No Vulnerabilities Found for quay.io/solo-io/gloo:1.16.16 (ubuntu 20.04)

Vulnerabilities Listed for usr/local/bin/gloo

Vulnerability ID Package Severity Installed Version Fixed Version Reference
CVE-2024-24790 stdlib CRITICAL 1.21.9 1.21.11, 1.22.4 https://avd.aquasec.com/nvd/cve-2024-24790

quay.io/solo-io/gloo-envoy-wrapper:1.16.16

No Vulnerabilities Found for quay.io/solo-io/gloo-envoy-wrapper:1.16.16 (ubuntu 20.04)

Vulnerabilities Listed for usr/local/bin/envoyinit

Vulnerability ID Package Severity Installed Version Fixed Version Reference
CVE-2024-24790 stdlib CRITICAL 1.21.9 1.21.11, 1.22.4 https://avd.aquasec.com/nvd/cve-2024-24790

quay.io/solo-io/ingress:1.16.16

No Vulnerabilities Found for quay.io/solo-io/ingress:1.16.16 (alpine 3.17.6)

Vulnerabilities Listed for usr/local/bin/ingress

Vulnerability ID Package Severity Installed Version Fixed Version Reference
CVE-2024-24790 stdlib CRITICAL 1.21.9 1.21.11, 1.22.4 https://avd.aquasec.com/nvd/cve-2024-24790

quay.io/solo-io/kubectl:1.16.16

No Vulnerabilities Found for quay.io/solo-io/kubectl:1.16.16 (alpine 3.17.6)

Vulnerabilities Listed for usr/local/bin/kubectl

Vulnerability ID Package Severity Installed Version Fixed Version Reference
CVE-2024-24790 stdlib CRITICAL 1.21.9 1.21.11, 1.22.4 https://avd.aquasec.com/nvd/cve-2024-24790

quay.io/solo-io/sds:1.16.16

No Vulnerabilities Found for quay.io/solo-io/sds:1.16.16 (alpine 3.17.6)

Vulnerabilities Listed for usr/local/bin/sds

Vulnerability ID Package Severity Installed Version Fixed Version Reference
CVE-2024-24790 stdlib CRITICAL 1.21.9 1.21.11, 1.22.4 https://avd.aquasec.com/nvd/cve-2024-24790

┆Issue is synchronized with this Asana task by Unito

@bewebi
Copy link
Contributor

bewebi commented Jun 28, 2024

This will be resolved in v1.18.0-beta2, 1.17.0-rc9, and v1.16.17 via #9678, #9684, and #9685 respectively

@bewebi bewebi closed this as completed Jun 28, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Prioritized Indicating issue prioritized to be worked on in RFE stream trivy vulnerability
Projects
None yet
Development

No branches or pull requests

3 participants